MalwareBazaar Database

You are currently viewing the MalwareBazaar entry for SHA256 52ce95e6e3ef82bfd7e8727f9d0b63e9464860f4ccb1fcd0cf0972f5243d6601. While MalwareBazaar tries to identify whether the sample provided is malicious or not, there is no guarantee that a sample in MalwareBazaar is malicious.

Database Entry



Threat unknown


Vendor detections: 4


Intelligence 4 IOCs YARA File information Comments

SHA256 hash: 52ce95e6e3ef82bfd7e8727f9d0b63e9464860f4ccb1fcd0cf0972f5243d6601
SHA3-384 hash: 4a6b6bf1637f5ba72c4aa69206801c17c783d2c57ef222fc21eaed2db75d6d56b5980724aa1232784bf27342bfe16489
SHA1 hash: ff4f61ea6c99d9c47cd28c8ab4936684ba58b389
MD5 hash: 467a33f61cf14e3aa513db000cfb4015
humanhash: thirteen-cup-snake-enemy
File name:quote106.zip
Download: download sample
File size:801'470 bytes
First seen:2020-08-05 06:32:15 UTC
Last seen:Never
File type: zip
MIME type:application/zip
ssdeep 24576:vzbNceHZIKJwtIb30w+PDpIn9Nr8CmsKwaVByAV:dZ6Ib30dCn9Nr8psKwaVsAV
TLSH B60533A7D6186F2E51789D2A5EDB9F13E9BCC33C502D76699C00E8E834D5FB4047B019
Reporter abuse_ch
Tags:zip


Avatar
abuse_ch
Malspam distributing unidentified malware:

From: Daniel Chen < server@hinet.net>
Subject: Immediate quote required
Attachment: quote106.zip (contains "quote106.exe")

Intelligence


File Origin
# of uploads :
1
# of downloads :
61
Origin country :
n/a
Vendor Threat Intelligence
Threat name:
ByteCode-MSIL.Trojan.Kryptik
Status:
Malicious
First seen:
2020-08-04 20:23:24 UTC
AV detection:
19 of 29 (65.52%)
Threat level:
  5/5
Please note that we are no longer able to provide a coverage score for Virus Total.

File information


The table below shows additional information about this malware sample such as delivery method and external references.

Malspam

zip 52ce95e6e3ef82bfd7e8727f9d0b63e9464860f4ccb1fcd0cf0972f5243d6601

(this sample)

  
Delivery method
Distributed via e-mail attachment

Comments